Robin Ward
f5e0cf63f6
SECURITY: The SSO return_path
was an open redirect
...
This security fix needs SSO to be configured, and the user has to go
through the entire auth process before being redirected to the wrong host so
it is probably lower priority for most installs.
2015-01-22 12:33:07 -05:00
Robin Ward
f7f2e83cfb
SECURITY: Don't whitelist codepen as it is a potential vector for abuse
2015-01-21 14:02:22 -05:00
Neil Lalonde
603108cd54
Version bump to v1.1.3
2014-12-12 14:37:30 -05:00
Régis Hanol
0138ecc99a
SECURITY: prevent direct download of backups
2014-12-03 13:02:42 +01:00
Neil Lalonde
89f5ea02f6
Version bump to v1.1.2
2014-11-21 11:26:26 -05:00
Sam
abff1e88d4
FIX: PM title not editable
2014-11-21 11:09:35 +11:00
Régis Hanol
e0a4a7a9cd
FEATURE: don't limit registration from an IP address if a staff member has that IP address
2014-11-21 00:34:31 +01:00
Jeff Atwood
4d1ac30233
fix pop up composer tips display for mobile
2014-11-21 00:34:24 +01:00
Neil Lalonde
6e0152ab94
Version bump to v1.1.1
2014-11-18 15:57:50 -05:00
Robin Ward
d912cf727f
Merge pull request #2980 from eriko/patch-1
...
set indent_style to valid value
2014-11-18 15:00:05 -05:00
Erik Ordway
e8ee08d159
set indent_style to valid value
...
Per the documentation for editorconfig the two valid values for ```indent_style``` are 'tab' or 'space'
2014-11-18 11:37:39 -08:00
Jeff Atwood
27801287ac
add TL2 note to max new accounts per reg ip
2014-11-18 03:59:27 -08:00
Régis Hanol
9c1341b554
FIX: limit the number of group members returned for automatic groups
2014-11-18 12:13:45 +01:00
Régis Hanol
f18d30f1d7
FIX: don't limit the number of group members returned to the front-end (UI needs some work for large groups)
2014-11-18 12:09:37 +01:00
Jeff Atwood
82be9d3445
setting this to 200 was not a good idea
2014-11-18 03:04:59 -08:00
Sam
b4844d4477
FIX: correct old username index
...
(in some cases search was not finding accounts)
2014-11-18 14:32:23 +11:00
Robin Ward
f73aa444ee
FIX: GroupedView bug with latest Ember build
2014-11-17 20:26:21 -05:00
Sam
e668d770ac
FEATURE: remove english korean slugs
2014-11-18 11:52:10 +11:00
Sam
4ff056231d
FIX: expanding replies not working correctly
2014-11-18 11:52:10 +11:00
Jeff Atwood
601a13acef
increase new user query to 200 results
2014-11-17 16:45:33 -08:00
Jeff Atwood
75b5b27f78
we don't need this /popular redirect any more
2014-11-17 16:40:23 -08:00
Sam
0faab6d54a
update rails master
2014-11-18 10:12:36 +11:00
Sam
a7713ecfc1
expire banner cache when excerpt is updated
2014-11-18 09:21:18 +11:00
Régis Hanol
672cd92638
FIX: damn timezones
2014-11-17 22:53:41 +01:00
Robin Ward
0b0cee4e07
Merge pull request #2969 from cpradio/pr-add-category-to-group-posts
...
FEATURE: Add category to Group Post Listing
2014-11-17 16:02:15 -05:00
cpradio
cca78f1031
Remove n+1 query on Categories
2014-11-17 15:43:22 -05:00
Robin Ward
72cd2f284b
FIX: Try a different way of removing use strict
from Ember 1.7.1
2014-11-17 15:31:30 -05:00
Robin Ward
7b7567f8e6
FIX: Remove use strict
from ember build to get around iOS bugs
2014-11-17 14:42:21 -05:00
Régis Hanol
d702c31520
Merge pull request #2976 from davidgnavas/patch-1
...
little typo
2014-11-17 19:29:04 +01:00
David García-Navas López de Cuéllar
fd0ba997d0
little typo
2014-11-17 19:01:08 +01:00
Robin Ward
5e62461f5a
Merge pull request #2975 from techAPJ/patch-3
...
Update Translations
2014-11-17 12:34:40 -05:00
Robin Ward
cc097a3baa
SECURITY: Update Rails to 4.1.8
2014-11-17 12:21:00 -05:00
Régis Hanol
15a5d06495
use proper case & remove unused view
2014-11-17 18:17:24 +01:00
Arpit Jalan
dbd5823881
Update Translations
2014-11-17 21:35:06 +05:30
Régis Hanol
216a5a87cb
FIX: do not display EPOCH
2014-11-17 16:32:14 +01:00
Régis Hanol
7bb9a839e5
fix the build (again)
2014-11-17 16:06:43 +01:00
Régis Hanol
dd9c475ea0
FIX: changing category within edit grace period as TL3 pops up an error
2014-11-17 15:57:45 +01:00
Régis Hanol
a06bf0b7be
fix the build
2014-11-17 15:47:07 +01:00
Régis Hanol
5edcb77f26
Merge pull request #2972 from intelliot/patch-1
...
fix minor typo
2014-11-17 15:06:07 +01:00
Régis Hanol
dbb4491bc3
Merge pull request #2973 from lidel/openstreetmap-support
...
UX: whitelist OpenStreetMap iframes
2014-11-17 15:04:58 +01:00
Régis Hanol
c5f9dd4ef3
FEATURE: only limit new registrations from that IP if all the users from that IP are TL1 or TL0
2014-11-17 15:02:10 +01:00
Régis Hanol
fae19aa56c
FEATURE: improve admin IP lookup dialog (add username/trust level/read time/topics entered)
2014-11-17 14:51:28 +01:00
Marcin Rataj
9dccd975d9
UX: whitelist OpenStreetMap iframes
2014-11-17 14:30:25 +01:00
Régis Hanol
7641d88224
FEATURE: new 'maximum new user accounts per registration IP' site setting
2014-11-17 12:04:29 +01:00
Jeff Atwood
78f6cea16c
bump up header icon size a bit
2014-11-17 02:21:30 -08:00
Jeff Atwood
e3ff168e42
specify max-width 100% on digest email logos
2014-11-17 02:10:33 -08:00
Jeff Atwood
750189818e
Omit Needless Words
2014-11-16 23:49:16 -08:00
Elliot Lee
3e4beeee32
fix minor typo
2014-11-16 23:17:15 -08:00
Sam
8881e56df5
PERF: don't ever use inject on AR relations
...
inject will deteriorate to a method missing that
invokes arel and a world of uneeded work
2014-11-17 18:03:11 +11:00
Sam
85e5e912b2
be explicit about log level
2014-11-17 18:03:11 +11:00